Amy Schurr
Mobile app security professionals who connect and engage with the broader mobile appsec community can amplify their efforts and learn from each other. Combined, the NowSecure services team members have pen tested thousands of mobile apps. They share three key best practices for mobile app pen testing that practitioners can adopt to meet their organizations’ needs.
Last week open-source software experts, mobile application DevSecOps leaders and practitioners and federal government specialists convened in Washington, D.C., at the first annual NowSecure Connect conference. The purpose of #Connect19 was to connect people, ideas, and technology by bringing together the top global technologists and industry thought leaders with a shared passion for delivering secure mobile apps at scale. At the end of the event, our goal was to ensure everyone walked away from the Kaiser Permanente Center for Total Health with new knowledge, insights and professional connections with peers.
While some organizations and executives may not be fully aware of all the threats to their mobile applications, the risks are real and growing. Vulnerabilities arise from code flaws, encryption errors, unsecured data transmission or data exposure. Looking back at the top five mobile breaches that have occurred over the past year helps drive home the importance of mobile application security.
With most online traffic shifting to mobile, organizations are at risk of data loss due to risky mobile apps that have security and privacy vulnerabilities. Consult this infographic to see potential threats in mobile app code functionality, data at rest and data in motion and how to identify them with mobile appsec testing.
As DevSecOps takes hold in organizations, there’s a noticeable difference in maturity of application security testing practices for mobile apps vs. web. NowSecure sought to understand the role of DevSecOps in the mobile application development lifecycle by polling IT leaders about their release and testing practices. Consult this infographic to see how your organization stacks up against your peers and the top benefits companies have achieved by incorporating security testing into mobile DevOps.
Because NowSecure was founded as a mobile application forensics company a decade ago, penetration testing is built into our DNA. We’ve tested thousands of Android and iOS apps on behalf of our customers, uncovered some scary vulnerabilities and helped customers improve the security of their mobile apps. The following is the third installment of an […]